This page displays vulnerability information about FreeBSD Ports.
The VUXML data was last processed by FreshPorts on 2024-11-16 12:24:49 UTC
List all Vulnerabilities, by package
List all Vulnerabilities, by date
k68These are the vulnerabilities relating to the commit you have selected:
VuXML ID | Description |
---|---|
5f608c68-276c-11ef-8caa-0897988a1c07 | Composer -- Multiple command injections via malicious git/hg branch names Composer project reports:
Discovery 2024-06-10 Entry 2024-06-10 php81-composer < 2.7.7 php82-composer < 2.7.7 php83-composer < 2.7.7 CVE-2024-35241 https://github.com/composer/composer/security/advisories/GHSA-47f6-5gq3-vx9c CVE-2024-35242 https://github.com/composer/composer/security/advisories/GHSA-v9qv-c7wm-wgmf |
33ba2241-c68e-11ee-9ef3-001999f8d30b | Composer -- Code execution and possible privilege escalation Copmposer reports:
Discovery 2024-02-08 Entry 2024-02-08 php81-composer < 2.7.0 php82-composer < 2.7.0 php83-composer < 2.7.0 CVE-2024-24821 https://github.com/composer/composer/security/advisories/GHSA-7c6p-848j-wh5h |